CVE-2026-15305
Last modified
CVE-2026-15305 is a medium-severity vulnerability rated 6.3/10 on the CVSS scale. Users were able to upload files with arbitrary MIME types to forms using FileUpload or ImageUpload elements with allowedMimeTypes configured. The restriction was not enforced server-side because the MimeTypeValidator was registered during form building before concrete form definition properties were applied, resulting in the validator never being added to the processing pipeline. EPSS estimates a 0.17% chance of exploitation in the next 30 days.
Description
Users were able to upload files with arbitrary MIME types to forms using FileUpload or ImageUpload elements with allowedMimeTypes configured. The restriction was not enforced server-side because the MimeTypeValidator was registered during form building before concrete form definition properties were applied, resulting in the validator never being added to the processing pipeline. This issue affects TYPO3 CMS versions 14.2.0-14.3.4.
Metrics
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| TYPO3 | TYPO3 CMS | >= 14.2.0, < 14.3.5 |
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-15305?
How severe is CVE-2026-15305?
How do I fix CVE-2026-15305?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-15299The Animation Addons for Elementor plugin for WordPress is v…6.4
- CVE-2026-1530A flaw was found in fog-kubevirt. This vulnerability allows …8.1
- CVE-2026-15300The GEO my WP plugin for WordPress was vulnerable to SQL Inj…9.1
- CVE-2026-15301The BuddyHolis TableSearch plugin for WordPress is vulnerabl…6.4
- CVE-2026-15302The ARMember plugin for WordPress is vulnerable to Directory…5.3
- CVE-2026-15304The Plugin Organizer plugin for WordPress is vulnerable to S…6.5
- CVE-2026-15306The Product Feed Manager For WooCommerce – Sell on 200+ Onli…6.1
- CVE-2026-15307An issue was discovered in Django 5.2 before 5.2.17 and 6.0 …8.8
- CVE-2026-15308The incremental HTML parser (html.parser.HTMLParser) allows …7.5
- CVE-2026-1531A flaw was found in foreman_kubevirt. When configuring the c…8.1
- CVE-2026-15311A vulnerability was identified in NousResearch hermes-agent …3.5
- CVE-2026-15314Tapo P110 v1 smart Wi-Fi Plug contains an improper boundary …7.5
Are you affected by CVE-2026-15305?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
